
Supply Chain Security - Ivan Arce - PSW #781
About this episode
We will talk about Supply chain security, the TPM 2.0 vulnerabilities recently discovered by a Quarkslab researcher, bugs in reference implementations, vulnerability disclosure and perhaps various other topics.
Segment Resources:
Vulnerabilities in the TPM2.0 reference implementation
https://blog.quarkslab.com/vulnerabilities-in-the-tpm-20-reference-implementation-code.html
Vulnerabilities in High Assurance Boot of NXP i.MX microprocessors
https://blog.quarkslab.com/vulnerabilities-in-high-assurance-boot-of-nxp-imx-microprocessors.html
Heap memory corruption in ASN.1 parsing code generated by Objective Systems Inc. ASN1C compiler for C/C++
https://github.com/programa-stic/security-advisories/blob/master/ObjSys/CVE-2016-5080/README.md
Visit https://www.securityweekly.com/psw for all the latest episodes!
Show Notes: https://securityweekly.com/psw781
Get every episode summarized
Each time Paul's Security Weekly (Video) publishes, we email you a written briefing from the transcript — the topics, who appeared, and any specific claims, with the ad reads skipped.
Email me new episodesFree for 3 shows. No card needed.
No transcript yet
This episode has not been transcribed. Request it and it moves to the front of the queue.
More episodes
More from Paul's Security Weekly (Video)
The AI "Vulnpocolypse" Is Real? - PSW #922
Paul's Security Weekly (Video)
AI Makes All Bug Shallow? - PSW #921
Paul's Security Weekly (Video)
What Is A Router? (And all things AI) - PSW #920
Paul's Security Weekly (Video)
Scanning The Internet with Linux Tools - PSW #919
Paul's Security Weekly (Video)